Техническая информация
- '%TEMP%\bedeacebda.exe' 7#2#4#6#3#3#4#1#4#3#4 KE5FPjo0Ly8uHStMUz5KRkE5LxwsSj5SU0lPSEVDOS0cKEJFTVFGQDwtLjMqMRwpQEZAPCwdK0lQSz5SQFBeRUE5KjQ1Lh0sT0ROU0FLXVFMSTpkc3BtNigtb2xzK0BET0gpTU1MJz5NTC1FS0JIHis9SUY/SkVBOSwwLDAuMTU...
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81435895941.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81435895941.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81435895941.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nss2.tmp\lxqhkso.dll
- %TEMP%\bedeacebda.gbbcabfbdabia
- %TEMP%\gbbcabfbdabia.zip
- %TEMP%\bedeacebda.exe
- %TEMP%\nss2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81435895941.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- ClassName: '#32770' WindowName: ''